This document sets the secure standards for our Zero Trust VDI solution. The architecture uses Paralles RAS, the hardened RAS, and delivers unified Windows Identity for VDI session via Single Sign-On (SSO). Security measures tailored for two distinct IT and Administrative Users.
[IGEL Endpoint] → [Paralles RAS Context Filters, In-session SAML]
• Read-Only OS
• Secure Boot
• Peripheral Control
Restie Neale Broader app suite suite OoBA for critical apps
• Administrative Users: Paralles RAS Security
• Kiosk Uses: Restricted session + OoBA for critical apps
• All VDIs: Non-persistent
• Kiosk VDIS:
• Kiosk VDIS: Severe Restrictions
• Administrative VDIS: Network Segmentation, Deep Baselines
by mike